US8166122B2

Method and apparatus for generating a figure of merit for use in transmission of messages in a multi-level secure environment

Summary by NHIP

Multi-level secure message verification

The method generates a figure of merit by examining data provenance records for discrepancies during message transmission. It verifies sender signatures, calculates hash values, and confirms timestamps while checking authenticity, confidentiality, integrity, non-repudiation, and availability attributes.

Claim Score by NHIP

Read claim 1, the broadest

Abstract

A method and apparatus that generate a figure of merit for use in transmission of messages in a multi-level secure environment. The method may include receiving a message having a data provenance wrapper, examining each data provenance record of the message and any attachments for discrepancies, identifying any discrepancies in the examination of each data provenance record of the message and any attachments, generating a figure of merit based on objective and subjective information, substituting the figure of merit for the data provenance information, and transmitting the figure of merit with the message across the security domain.

US8166122B2, drawing sheet 1
Sheet 1 of 8

Term

Projected expiry 16 December 2030.

  1. Priority
  2. Filed
  3. Granted
  4. Today
  5. Projected expiry

21 claims: 3 independent, 18 dependent

  1. 1
    Broadest claimClaim Score 21, narrow(NHIP)A method for generating a figure of merit for use in transmission of messages in a multi-level secure environment, comprising:receiving a message having a data provenance wrapper, wherein the message includes one or more attachments and the data provenance wrapper contains one or more data provenance records with data provenance information for the message and each of the one or more attachments;examining each of the one or more data provenance records of the message and the one or more attachments for discrepancies, wherein the examination of each of the one or more data provenance records of the message and the one or more attachments includes: verifying signatures of senders of the message and the one or more attachments;calculating a hash value for the message and the one or more attachments;verifying that the hash value for the message and the one or more attachments matches values in the data provenance record for the message and the one or more attachments;verifying a timestamp of the message and the one or more attachments;and verifying information assurance attributes of the message and the one or more attachments, the information assurance attributes being at least one of authenticity, confidentiality, integrity, non-repudiation, and availability;identifying the discrepancies in the examination of each of the more or more data provenance records of the message and the one or more attachments;determining if the message is to be transmitted to a recipient across a security domain, wherein if it is determined that the message is to be transmitted to the recipient across the security domain, determining if the data provenance information can be transmitted with the message across the security domain, wherein if it is determined that the data provenance information cannot be transmitted with the message across the security domain, generating the figure of merit based on objective and subjective information, wherein the objective and subjective information includes at least one of information assurance attributes, certificate of authority confidence information, and workflow component confidence information;substituting the figure of merit for the data provenance information;and transmitting the figure of merit with the message across the security domain.
  2. 8
    An apparatus that generates a figure of merit for use in transmission of messages in a multi-level secure environment, comprising:a communication interface that facilitates the sending and receiving of messages;data provenance information analysis unit that receives one of the messages through the communication interface having a data provenance wrapper, examines each data provenance record of the message and one or more attachments for discrepancies, identifies the discrepancies in the examination of each data provenance record of the message and the one or more attachments;a figure of merit generator that determines if the message is to be transmitted to a recipient across a security domain, wherein if the figure of merit generator determines that the message is to be transmitted to the recipient across the security domain, the figure of merit generator determines if the data provenance information can be transmitted with the message across the security domain, wherein if the figure of merit generator determines that the data provenance information cannot be transmitted with the message across the security domain, the figure of merit generator generates the figure of merit based on objective and subjective information, substitutes the figure of merit for the data provenance information, and transmits the figure of merit with the message across the security domain using the communication interface, wherein the message includes one or more attachments and the data provenance wrapper contains the data provenance record with data provenance information for the message and the one or more attachments, wherein in the examination of each data provenance record of the message and the one or more attachments, the data provenance information analysis unit verifies signatures of senders of the message and the one or more attachments, calculates a hash value for the message and the one or more attachments, verifies that the hash value for the message and the one or more attachments matches values in the data provenance record for the message and the one or more attachments, verifies a timestamp of the message and the one or more attachments, and verifies information assurance attributes of the message and the one or more attachments, the information assurance attributes being at least one of authenticity, confidentiality, integrity, non-repudiation, and availability, and wherein the objective and subjective information includes at least one of information assurance attributes, certificate of authority confidence information, and workflow component confidence information.
  3. 15
    A non-transitory computer-readable medium storing instructions for generating a figure of merit for use in transmission of messages in a multi-level secure environment, the instructions, when executed by a processor, performing a method comprising:receiving a message having a data provenance wrapper, wherein the message includes one or more attachments and the data provenance wrapper contains one or more data provenance records with data provenance information for the message and each of the one or more attachments;examining each of the one or more data provenance records of the message and the one or more attachments for discrepancies, wherein the examination of each of the one or more data provenance records of the message and the one or more attachments includes: verifying signatures of senders of the message and the one or more attachments;calculating a hash value for the message and the one or more attachments;verifying that the hash value for the message and the one or more attachments matches values in the data provenance record for the message and the one or more attachments;verifying a timestamp of the message and the one or more attachments;and verifying information assurance attributes of the message and the one or more attachments, the information assurance attributes being at least one of authenticity, confidentiality, integrity, non-repudiation, and availability;identifying the discrepancies in the examination of each of the more or more data provenance records of the message and the one or more attachments;determining if the message is to be transmitted to a recipient across a security domain, wherein if it is determined that the message is to be transmitted to the recipient across the security domain, determining if the data provenance information can be transmitted with the message across the security domain, wherein if it is determined that the data provenance information cannot be transmitted with the message across the security domain, generating the figure of merit based on objective and subjective information, wherein the objective and subjective information includes at least one of information assurance attributes, certificate of authority confidence information, and workflow component confidence information;substituting the figure of merit for the data provenance information;and transmitting the figure of merit with the message across the security domain.